On Sat, Jul 16, 2005 at 04:34:47PM +0200, Camiel Dobbelaar wrote:

> > Is there a workaround or proper solution for this (possibly including a
> > rant about my braindamage ;) ?
> Nope, there is no way to rdr connections originating on the local box, 
> hence no way for pftpx to get involved.

Thanks for that clarification. Do you or anyone else know the rationale
behind rdr not working for locally originating packets?

> Why are you doing ftp from the firewall anyway?  ;-)

My dedicated bastion host doesn't arrive until this afternoon. ;)

I've now opened active ftp the traditional way for my squid proxy and
pipe all local ftp connections through there but that's rather clumsy. I
hoped that the proxy itself could profit from the additional security
pftpx provides.
-- 
bye, Micha

Reply via email to